Microsoft Identity and Cloud Security Administrator
Our Purpose
Mercantile Bank was founded by entrepreneurs who believed building strong relationships and communities is accomplished through collaboration and innovation. It's more than being a financial institution, it's being a trusted ally and community partner. As Michigan's largest community bank, our roots are deeply embedded in the diverse communities we serve. Our commitment to our customers and community is at the core of all we do.
As an employee of Mercantile Bank, you will receive competitive compensation, bonus opportunities, and best-in-class medical benefit options. With a minimum of 3 weeks' vacation, sick time, 11 paid holidays, generous 401k match of 5%, company paid life insurance, tuition reimbursement, IVF and adoption assistance, zero-interest loans for fitness equipment and business attire, discounted bank services, employee stock purchase plan, 529 savings plans, health savings accounts, flexible spending accounts, legal protection, exceptional training and development opportunities, and encouragement to connect with community through volunteer opportunities.
What You'll Own
As a Microsoft Identity and Cloud Security Administrator, you'll help protect Mercantile Bank's relationship-driven, community-focused work by keeping our Microsoft 365 environment secure, reliable, and ready for the people who depend on it every day. This is a role for someone who enjoys solving problems, building trust, and partnering across teams-not just closing tickets. Our technology team is service-minded, curious, and practical. We care about doing things the right way the first time, communicating clearly, following up quickly, and speaking up when something does not look right.
In this role, you'll help advance the team's goals of strengthening security, improving efficiency, supporting automation, and creating dependable technology experiences for employees and customers. You'll work closely with Information Security and IT partners to reduce risk, improve controls, support compliance, and contribute to secure operations that make a meaningful difference in the communities Mercantile Bank serves. This position requires advanced expertise in Microsoft security engineering, identity governance, threat protection, and Zero Trust architecture.
Key responsibilities include:
- Design, implement, and continuously improve Microsoft Entra security controls, including Conditional Access, Identity Protection, Authentication Strengths, Passwordless Authentication, External Identities, and Zero Trust security architecture.
- Administer and govern privileged access across the Microsoft ecosystem, including Entra PIM, Privileged Access Groups, Access Reviews, Entitlement Management, Lifecycle Workflows, and least-privilege access models.
- Manage and optimize Microsoft Defender security platforms, including Defender for Endpoint, Defender for Office 365, Defender for Identity, Defender for Cloud Apps, and Defender XDR to detect, want partner with Information security to investigate, and remediate cyber threats.
- Work directly with Information Security Team to lead Microsoft 365 security governance and data protection initiatives utilizing Microsoft Purview, Data Loss Prevention (DLP), Sensitivity Labels, Insider Risk Management, eDiscovery, Information Protection, and compliance controls.
- Serve as the organization's subject matter expert for Microsoft security technologies, providing strategic recommendations, security architecture guidance, threat mitigation expertise, and best practices related to Microsoft 365 E5, Microsoft Entra Suite, and advanced Microsoft security capabilities.
Required qualifications/skills:
- 5+ years of hands-on experience securing Microsoft environments, including Microsoft Entra ID, Microsoft Defender, Microsoft Purview, Exchange Online, Intune, and Microsoft 365 security services
- Demonstrated expertise implementing and managing identity security controls, including Conditional Access, Identity Protection, Privileged Identity Management (PIM), Access Reviews, Entitlement Management, Authentication Strengths, and Zero Trust security architectures.
- Strong organization and attention to detail across concurrent work.
- Analytical, proactive problem-solving; sound judgment when something "doesn't look right."
- Ability to prioritize effectively, communicate clearly, and delegate when appropriate.
- A service-focused mindset, curiosity for continuous improvement, and commitment to supporting secure, reliable banking.
A Typical Day
It may be hard to pinpoint what a typical day will be as a Microsoft Identity and Cloud Security Administrator because your day could vary. A priority will be to ensure Mercantile Bank's Microsoft environment is secure, stable, and ready for the employees and customers who rely on it. You will do this by reviewing overnight alerts, security dashboards, patch or vulnerability items, and identity signals to identify what needs attention, what can be improved, and where follow-up is needed.
Your day will shift between focused project work and time-sensitive troubleshooting. You might be refining Microsoft Defender policies, reviewing Entra ID access controls, supporting eDiscovery requests in Purview, documenting decisions for audit readiness, or partnering with Information Security to reduce risk and strengthen controls.
You'll collaborate regularly with teammates, IT leadership, vendors, and business partners to keep work moving from planning through rollout. Some days will call for calm problem-solving and quick prioritization; others will focus on improving processes, sharing knowledge, and helping the broader technology team build secure, dependable systems that support meaningful work in the communities Mercantile Bank serves.
Required Skills
Required Languages
🇬🇧 English